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(U) Module 6 

(U) The Technical Work Role 

(U) This module will enable you to: 

• -fTG//GI//Nr)- Identify the various technical roles that support the BR and PR/TT Bulk 
Metadata Programs 

• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission 
systems and data flows 

• (TS//SI//NF) Practice applying BR and PR/TT authorities in real-life scenarios 
applicable to technical personnel 
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of our trip, we discuss several topics of particular interest to those of you in technical roles, or supervising 
d PR/TT Bulk Metadata Programs. It is important for you to remember that the essential support you provide 
nd PR/TT-related work in compliance with applicable legal documents and relevant authorities. As we 
responsibility, technical personnel have been given tremendous access to touch the data in order to make it 

dule we are going to discuss the authorizations, roles, and responsibilities of the Technical Personnel. This 
lical roles that support the BR and PR/TT Bulk Metadata Programs 


staff in a technical role, supporting the BR an 
enables all of the roles to perform their BR- a 
discussed in Module 5, because of this great 
available and usable for the analysts. 

(TS//SI//NF) (Technical Character): In this me 
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(U) Identify the responsibilities of each of the technical roles 

(U) Recognize key points of the compliance certification process for mission systems and data flows 

i Practice applying BR and PR/TT authorities in real-life scenarios applicable to technical personnel 
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(TS//S I //NF) (Technical Character): In Module 5, we explained there are two major areas where technical support is providecOor the BR and PR/TT Bulk 
Metadata Programs. The first is the group of technical personnel who are responsible for the collection and metadata process. The second is the 

group responsible for storage, presentation, and maintenance of the BR and PR/TT metadata. In the next few screens, we will describe in more detail these 
two main areas of responsibility. 
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(U) Mission Capabilities 



(U// FOUO) (Technical Character): Let’s examine more closely the work roles resDonsjhl^fcmi^QUectjQi^ncbiieydaJa^^^^^Bomcesse^This 
category of technical staff currently includes the technical professionals in Mission 

Capabilities staff within the Technology Directorate (TD) organizations. As we proceed through this module you will find out more about the roles in each of 
these three organizations. 



(TS//S I //NT) Note that in addition to these key roles, there are other technical roles that are important to the implementation of these programs. These roles 
include individuals involved in the acquisition, processing, presentation, storage, retention, and support to operations which are authorized under the BR 
and PR/TT Orders. 
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(TS//SI//NF) Some of the rules that apply to I 

• Acquire datal 

• Identify all m 

lis promptly destroyed 

• Changes to systems require approval by the Chief of S3 
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• NSA is only 

• All of the metadata is identifiable as BR or PR/TT data 

• Data which does not fall within FISC specified requirements regarding 
promptly destroyed 

• Changes to systems under ^^Bpurview are approved by the Chief of S3 before implementation 
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(U) Collection and Metadata 
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TTS//3I//MF) Some of the roles that 

• Provide reasonable assurance that all 
compliance with FISC Orders 

• Validate that only properly) 
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(TS//S I //N F) Some of the roles that 

• Provide reasonable assurance that all 
FISC Orders. 

• Validate that only properly metadata is forwarded to the 



re in compliance with the 
^Hbr analytic use. 
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(TS//S I //N F) This staff will rarely come in contact with human intelligible PR/TT metadata. Scroll over the logo to find out more about Mission Capabilities. 
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faff in 



is responsible for developing the 






a) (U) Mission Capabilities 

b > HHHH 

c) 

d) (U) Flomeland Mission Coordinators 




is responsible for integrating the PR/TTl 

Including conducting related testing prior to system 



a) (U) Mission Capabilities 

b) 

c) 

d) (U) Flomeland Mission Coordinators 




d) (U) Flomeland Mission Coordinators 



(U) (Technical Character): Let’s make a few notes in our travel journal and check to see what you remember from this topic! 
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(TG//0 I //Nr -) (Technical Character): Now let’s discuss the work roles responsible for the storage, presentation, and maintenanc^njotMhe BR and PR/TT 
metadata. This category of technical staff currently includes the technical professionals in Mission Capabililn ml 
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(U) Storage, Presentation, and Maintenance of the Metadata 





(TS//SI//NF) Mission Capabilities is 
responsible for: 

• Developing, maintaining, and operating 
repositories that store and present BR and 
PR/TT metadata 


(U) Mission Capabilities 













(TS//SI//NF) S ome of the rules that apply to Mission Capabilities: 

• Metadata must be maintained in secure NSA repositories 

• Data must be identifiable as BR or PR/TT 

• Implement technical controls to prevent unauthorized access 

• Restrict intelligence analysis queries to RAS-approved identifiers (e.g. the EAR) 

• Ensure intelligence analysis queries remain within authorized number of hops 

• Create auditable records of all intelligence analysis queries 

• Destroy all metadata before the end of the five year authorized retention period (no 
exceptions!) 

• Changes to systems must be certified by the TD Compliance Office before 
implementation 

• Automated queries are prohibited without approval 
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(TS//S I //MF) (Technical Character): You will recall that Mission Capabilities supports collection and metadata and other branches of Mission 

CanahilitieR Riinnnrf Rtnrane nreRentatinn and maintenance! nf the metadata For the latter the Rtaff iR tvnicallv datahaRe management and user interface 

d PR/TT metadata, as well as 





(TG//O I //NP ) Some of the rules that apply to Mission Capabilities include: 

• Metadata must be maintained in secure NSA repositories 

• Data items must be identifiable as BR or PR/TT metadata 

• Implement technical controls to prevent unauthorized access 

• Implement technical controls to restrict intelligence analysis queries to RAS-approved identifiers (e.g. the EAR) 

• Implement technical controls to provide reasonable assurance that the results of intelligence analysis queries remain within the authorized number 
of hops 

• Create auditable records of all intelligence analysis queries 

• Destroy all metadata before the end of the five year authorized retention period (no exceptions for backup data) 




- (TS//S I //N E)-This staff will come in contact with human intelligible BR and PR/TT metadata. 
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(TS//SI//NF) Protocol Exploitation is 
responsible for: 

• Ensuring data is normalized and is 
presented in a usable format 

• Providing support to intelligence analysts 



(TB/,'SI//NF) For BR. ertorms unique functions including: 

Normalizing 

Reviewing data to ensure records include only data rMKMWSWff Bl 

Assist in ensuring that data to be presented to analysts will be in a usable format 
Providing operational support to intelligence analysts; support is limited to RAS-approved identifiers 
within the authorized number of hops 



As you for PR/TT, ^^^^^^^^^^^perovides for 

BR, in ensuring accurate representation and integrity of the metadat^i^hi^ontext,^^^^^^^^^^H performs both a 

tech upporting role for intelligence analysts. Because of this dual role,^^^^^^^^^^^|must apply the rules governing the specific 

function it is performing at the time. Wheiyjerfomiinc^nechnical role, the technical rules apply which allow broader access to the data. However, when 
supporting the intelligence analyst, the staff must operate within the same rules applicable to the intelligence analyst which are more 
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restrictive. 

(TS//SI//NF) For performs unique functions to include: 

• Normalizing all of the disparate data formats 

• Reviewing the data to validate that the records include only data 

• Assist in ensuring that the data to be presented to the analysts will be in a usable format 

• Providing operational support as necessary to intelligence analysts; support is limited to RAS-approved identifiers within the authorized number of 
hops 
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4. (T3//3 I //NT) W hich one of these is not one of the roles and responsibilities of the technical personnel? 

a) (U//FOUO) Manipulating and validating the metadata to make it usable for intelligence analysis 
purposes 

b) (T0//0 l //Nr) Developing new tools to support querying of BR and PR/TT metadata 

c) - (S//S I //RE -E)- Running an intelligence analysis query using a RAS-approved identifier for an analyst 
who is experiencing problems recreating their query results 

d) (S//S I //REL) Running an intelligence analysis query using a non-RAS-approved identifier for 
an analyst who is experiencing problems recreating their query results 



e) (U) Both C and D 



orovides support to the BR program by doing the following (check all 



5. ( T S // S I / / N F ) ^ 

that apply): 

a) (U) Normalizing all of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data 



c) 

d) 

e) 



(U) Ensuring metadata is maintained in secure NSA repositories. 

(U) Assist in ensuring that the data to be presented to the analysts will be in a usable format 

(U) Destroy all metadata before the end of the five year authorized retention period (no exceptions 
for backup data 

(S//S I //REL) Providing operational support as necessary to intelligence analysts on RAS- 
approved identifiers within the authorized number of hops 



6. (T O//S I //Nr) Database nogggggment and user interface professionals in develop, 

maintain, and operate the ^^^^|that store and present BR and PR/TT metadata, and develop 
algorithms/processes that prepare, optimize, and characterize the metadata for analytic utilization. 

a) 

b) 

c) 

d) (U) Homeland Mission Coordinators 



(U) (Technical Character): Let’s check what you remember from this topic! 




Question 4. (TS//S I //NF) Correct! Running an intelligence analysis query using a non-RAS-approved identifier for an analyst who is experiencing problems 
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recreating their query results is not one of the roles and responsibilities of the technical personnel. 



~ (TS//G I //Nr) Incorrect. The correct answer is d). Running an intelligence analysis query using a non-RAS-approved identifier for an analyst who is 
experiencing problems recreating their query results is not one of the roles and responsibilities of the technical personnel. 



Question 5. (TS/ZS I Z/NT) Correct! ^^^^^^^^^^^^irovides support to the BR program by doing the following: 

a) (U) Normalizing all of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data 

d) (U) Assist in ensuring that the data to be presented to the analysts will be in a usable format 

f) (3//3 I //REL) Providing operational support as necessary to intelligence analysts on RAS-approved identifiers within the authorized 
number of 

fTS//S I //NI~) Incorrect provides support to the BR program by doing the following: 

a) (U) Normalizing all of the disparate data formats 

b) (U) Reviewing the data to validate that the records include data 

d) (U) Assist in ensuring that the data to be presented to the analysts will be in a usable format 

f) (3//3 I //RCL) Providing operational support as necessary to intelligence analysts on RAS-approved identifiers within the authorized 
number of hops 



Question 6 



Database management and user interface professionals in Mission Capabilities develop, maintain, and operati 
store and present BR and PR/TT metadata, and develop algorithms/processes that prepare, optimize, and characterize the metadata! 




- (T G //G I //NiT JflfiQ|j£CLThe correct answer is a). Database management and user interface professionals in Mission Capabilities develop, maintain, and 
operate the^^^^Mthatstore_and present BR and PR/TT metadata, and develop algorithms/processes that prepare, optimize, and characterize the 
metadata I 
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(U) The Compliance Certification Process 

(U//FOUO) Compliance certification is a mandatory check for all systems handling U.S. 
person or FISA data 

(U) Guidelines governing the certification process are maintained by the TD Compliance 
Office 

(U) Compliance should be integrated into the development process 
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vill discuss the compliance certification process used by technical personnel who develop mission 
3R and PR/TT Programs. Compliance certification is a mandatory check for all systems handling U.S. person 
cation process are maintained by the TD Compliance Office. This process supports compliance with the 
the NSA Way. The NSA Way is a unified framework for building large (or small), complex, primarily software 
missions. An important point is that compliance should be integrated into the development process. 


technologies to include those supporting the 
or FISA data. Guidelines governing the certifi 
applicable laws and authorities and supports 
systems that meet the diverse needs of NSA 
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(U) Following the Compliance Certification Process 

(U) The goal of the compliance certification process is to integrate compliance into the 
development phase 
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(T3//3 I //NF) (Technical Character): The goal of the compliance certification process is to integrate compliance into the development phase. The gates 
shown in the compliance process represent distinct requirements that must be satisfied in order to provide reasonable assurance of compliance. The 
architects of the new technology develop engineering documents to support these requirements. The TD certification group reviews the artifacts to verify 
the compliance process requirements are being met. 



I Access the site by typing I 



(TO//D I //Nr ) The compliance certification process begins by registering 
browser. Once registration is complete, you will receive a requirements pa 

(U/?ft5mQ) Compliance is an ongoing process. Any change or update to previously certified software requires recertifi 
words, if you develop a modification or upgrade to the software, then you need to register the software modification in 
recertification process. 
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fFStfSWNE) Formal approval is required for all new and/or different BR and PR/TT systems. Under no circumstances can a change be made to a software 
system (even for testing purposes) without going through the compliance certification (or recertification) process. 
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(U//FOUO) The goal of dataflow governance is to provide reasonable assurance of 
accountability and compliance for NSA mission data as it moves throughout NSA systems 
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(U//FOUO) Triggers for entering the dataflow governance 
limited to): 

• Adding a 

• Replacing an existing repository 

• Inserting a process or system into the flow 

• Adding a new mission element 

• Legacy migration 




process include (but are not 



(TS//S I //NF) (Technical Character): The Collection Strategies and Requirements Center (CSRC) is responsible for dataflow governance, which provides 
reasonable assurance of accountability and compliance for NSA mission data as it moves throughout NSA systems. This is critical to protect the data, and 
when we are talking about volumes of U.S. person data you can understand why this is so important. 



fT0//0 l //Nr) The process begins by submitting a dataflow request (usually done by the system builder or access owner) for a new dataflow solution. Then 
some level of research is needed to determine the type of request and associated needs. Once the requirements are determined, a new processing 
capability may be developed, or an existing flow may be reconfigured to meet the new requirement. The solution must then be tested and obtain official 
sign-off at which time CSRC authorization to operate would be issued. 



I the dataflow governance process include (but are not limited to): 



Replacing an existing repository 
Inserting a process or system into the flow 
Adding a new mission element 

Legacy migration (moving an existing unmanaged flow to a managed flow) 



(TS//S I //NF) Formal approval is required for all new and/or different BR and PR/TT data flows. Under no circumstances can a change be made to a data 
flow (even for testing purposes) without going through the dataflow governance process. 



(U//F OUO) To find out more about the dataflow process, please refer to the Dataflow webpage by typing ‘go dataflow’ in your web browser. 
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(U) Knowledge Check 3 

7. (TS//S I //NF) The compliance certification process for new systems is triggered by 



a) (U) Entering a ticket 

b) (U//FOUO) Contacting NSA Way Team 

c) (U//FOUO) Entering the new software or system into | 

d) (U) All of the above 

8. (TS//SI//N^^hicj^yb^QllQwin£y^^^^ga|on for entering the dataflow governance process? 

b) (U^eplacin^^xistin^reposito^^ 

c) (U) Inserting a process or system into the flow 

d) (U) Modifying a bulk metadata query 

e) (U) Moving an existing unmanaged flow to a managed flow 

9. (T3//0 I //Nr) Before an analytic software upgrade is released on a system that handles BR or PR/TT data, 

the developers would need to in order to remain compliant. 

a) (U) contact the CSRC and undergo comDlianc^gcertjficatb 

b) (U) register the software release in^^^^^^^^^nnd undergo compliance recertification 



c) (U) obtain OGC approval 

d) (U) register your system with ODOC 



(U) (Technical Character): Let’s make a few notes in our travel journal and check to see what you remember from this topic! 



Correct! The compliance certification process for new systems is triggered by entering the new software or system in 
ct. The correct answer is c). The compliance certification process for new systems is triggered by entering the new software or system in 



Question 8. (U//F QUQ ) Correct! Modifying a bulk metadata query is not a reason for entering the dataflow governance process. 

(U/fFQLlQjJncorrect. The correct answer is d). Modifying a bulk metadata query is not a reason for entering the dataflow governance process. 

Question 9. (U/ /FOUO) Correct! Befoi^ai^nalvtic software upgrade is released on a system that handies BR or PR/TT data, the developers would need to 
register the software release in ^^^^^Knd undergo compliance recertification in order to remain compliant. 

(U //FOUO ) Incorrect. The correi^^^^^^^^^eforeananalytic software upgrade is released on a system that handles BR or PR/TT data, the developers 
would need to register the software rel ease in ^^^^^^^^Band undergo compliance recertification in order to remain compliant. 
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(U) Practice Scenario 1 

(T0//0 l //Nr) You are one of the cleared technic^^^^^^^^ponsible for metadata management 

within NSA's metadata repositories. You are working with other ^^^^^^^H-cleared developers on new query 
processes and tools. You ^^^|a set of properly marked recor y your team for development 

purposes from the PR/TT metadata. This set of PR/TT metadata records is stored on a physically isolated system 
within NSA’s secure network and is accessible only to the members of your team. Are your actions in 
compliance with the terms of the PR/TT Orders? 



ALT TAG: 



GRAPHIC/AV: 



(U) Please select the BEST answer: 

a) 

b) 



d) 



(TS//SI//NF ^ Yes, because the PR/TT Orders explicitly authorize properly trained technical 
personnel to develop and test new technologies to be used with the PR/TT metadata. 

(TC//0I//NF-) No, because the PR/TT Orders prohibit the use of new query processes against any of 
the PR/TT metadata. 

fFS//S I //NI~) Yes, because the^^^^^^^^HPR/TT metadata records still carry the unique 
markings and softwaj^xoitfml^on the physically isolated system to restrict access to 
those records to^^^^^^^^|cleared personnel. 

(U) None of the above are correct. 



(U) (Technical Character): Now let’s practice what we have learned using real-life scenarios. Carefully read the scenario and then select the best answer. 



ANSWER: 

a) - ( T0//G I //NF) I n co rrect. This statement is accurate, but this is not what makes your actions compliant. The correct answer is c). Yes, because the 

metadata r ecords still carry the unique markings and software controls on the physically isolated system to restrict access to 
those records to^^^^^^^^^leared personnel. 

^//S I //N R^ncorrect. The current Court Orders authorize NSA to develop new query processes. The correct answer is c). Yes, because the 

’R/TT metadata records still carry the unique markings and software controls on the physically isolated system to restrict access to 
those records to ^^^^^^^^|cleared personnel. 

c) tT3//3l//Nr)- Correct! The best answer is c). Yes, because the ^^^^^^^^^FR/TT metadatygcoKl^tiM carry the unique markings and 
software controls on the physically isolated system to restrir^^^^^^^^^e records to ^^^^^^^^^cleared personnel. 

d) (TS//S I //NF) Incorrect. The correct answer is c). Yes, because the^^^^^^^^|PR/T'n | iietadat^^cords still carry the unique markings and 
software controls on the physically isolated system to restrict access to those records to ^^^^^^^^Bcleared personnel. 
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(U) Practice Scenario 

(TS//S I //NF) You are a ^^^^^^^H-cleared developer of contact chaining analytic tools. Your 
management chain has requestec^nDriefing to demonstrate your progress on the latest version of the tool. 
You provide the briefing, which includes screen shots of the tool and query results generated by the tool. Are 
your actions in compliance with the Orders? 

(U) Please select the BEST answer: 
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a) (U/ /rOUO) No, unless all of those oi^oui^eveloDment team and all those who 
attended your briefing held current ^^^^^^^^Iclearances. 

b) (U) No, because the Court Orders do not permit testing of tools under development using 
real data. 

c) (U) Yes, as long as the query results shared during the briefing are never used for 
intelligence analysis purposes. 

d) (U) None of the above are correct. 



ANSWER: 

a) (U) Correct! This is the best answer. You cannot provide a demonstration unless all of the individuals who attended the briefing have 
completed the required training and received the necessary accesses. 

b) (U/7FQ UP) Incorrect. Th e correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 
current ^^^^^^^^|clearances. 

c) (U//FDyQ^ncoiTCC^2ie correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 
current ^^^^^^^^Klearances. 

d) (U//POt jQl Incorrect. Th e correct answer is a). No, unless all of those on your development team and all those who attended your briefing held 
current ^^^^^^^^Klearances. 
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(U) Practice Scenario 3 

{TS//SI//NF^ You are one of the^^^^^^^^ftcleared technical personnel responsible for metadata 
management within NSA's metadata repositories. You are responsible for the maintenance of backup 
systems and Continuity of Operations (COOP) planning and implementation. You have contro^ver the 
backup tapes that hold PR/TT metadata collected since the inception of the PR/TT authority^^Hf In 
accordance with your COOP plans, you know that if a disaster strikes and NSA’s online metaaatsi 
repositories are destroyed, you could use these backup tapes to repopulate the repositories with PR/TT 
metadata. Although the backup tapes contain information older than five years, the processes you would 
employ to repopuiate the online analytic metadata repositories would select only metadata collected within 
the last five years. Is your maintenance of backup tapes holding PR/TT metadata collected more than five 
years ago in compliance with the terms of the PR/TT Orders? 
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(U) Please select the BEST answer: 
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a) 

b) 

c) 



d) 



(TS//S I //NP )- Y es, because the older-than-five-years PR/TT metadata on the backup tapes 
will never be available for intelligence analysis purposes. 

(TS//S I //NF ) Yes, because the PR/TT Orders specifically authorize NSA to maintain backup 
tapes of the PR/TT metadata. 

(TS//S I //NF ) No, because the PR/TT Orders mandate the destruction of the PR/TT 
metadata no later than five years after its initial collection, with no exception for 
metadata on backup tapes. 

(U) None of the above are correct. 



ANSWER: 



a) ( TS//S I //NF ) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. This is different from other authorities, for example FAA 702 does 
not require the destruction of data in the archives. 

b) ( TG//G I //NF ) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. 

c) (TS//S I //N F) Correct! This is the best answer. No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than 
five years after its initial collection, with no exception for metadata on backup tapes. 

d) (TS//S I //NF) Incorrect. The correct answer is c). No, because the PR/TT Orders mandate the destruction of the PR/TT metadata no later than five 
years after its initial collection, with no exception for metadata on backup tapes. 
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(U) Now that you have completed this module you should be able to: 

• (TO//O I //NF ) Identify the various technical roles that support the BR and PR/TT Bulk 
Metadata Programs 

• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission 
systems and data flows 

• (TS//0 I //N1~) Practice applying BR and PR/TT authorities in real-life scenarios 
applicable to technical personnel 



GRAPHIC/AV: 

(U) Image of Technical Character sitting at 
a desk 



(U//F OUO) If you have questions or wish to find out more, please contact your manager or 
any of the following BR or PR/TT points of contact: 



TD Compliance Office website: go td compliance 
OGC email alias: 

OGC Phone: 

OGC website: go GC 



Oversight and Compliance email alias: DL SV42_all 



(T0//G I //Nr) (Technical Character): As we stated earlier in the course, the bulk metadata includes sensitive data that must be protected accordingly. By 
nature of the kinds of technical support provided to the BR and PR/TT programs, technical personnel have the authority and unrestricted access to touch 
unminimized/unevaluated (or raw), and very sensitive data (that contains a lot of U.S. person identifiers). Remember, we need to maintain a clear 
distinction between the roles of technical and analytical personnel. All personnel are held to a high standard of integrity, but in your technical role you must 
be particularly cautious because the tools you work with do not provide the same safeguards as those tools used by the analytical personnel. 
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( TS//S I //NF) In conclusion, it is your responsibility to keep the BR and PR/TT information within the confines of those who have the proper authorizations to 
touch and view the data. 

(U) Now that we have completed this part of our road trip, you should be able to: 

• ( TS//S I //NO Identify the various technical roles that support the BR and PR/TT Bulk Metadata Programs 

• (U) Identify the responsibilities of each of the technical roles 

• (U) Recognize key points of the compliance certification process for mission systems and data flows 

• (T S//8 I //NF) Practice applying BR and PR/TT authorities in real-life scenarios applicable to technical personnel 

(U) You are encouraged to reach out to your management or to any of the points of contact listed here if you have any questions or if you want to find out 
more. 
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• (U) You will view the questions in a separate Assessment Questions Document 



NEXT FRAME ID: 7230 



BACK FRAME ID: 7210 



ALT TAG: 



GRAPHIC/AV: 

(U) Image of Technical Character sitting at 
a desk 



• (U) You will enter your responses in a separate QuestionMark online answer sheet 

• (U) You will have only one attempt to successfully complete the assessment 

• (U) Allow yourself sufficient time (approximately 30 minutes) to complete the assessment 



(U) To Complete the Assessment: 



• (U) Click the link to open the Assessment Questions Document^ 



• (U) Go to the VUport SumTotal Content Player page, click on the Assessment link, and follow the 



Comment [SLS1]: Please make this a link that 
will open the Assessment Question pdf for 
Analytical Personnel (we will actually connect the 
link later). 



instructions to complete the required exam 



(UtfF OUQ - ) (OGC Attorney): The final part of your trip will be to successfully complete the assessment for the course. Please be aware that for the 
assessment you will view the questions in a .pdf file and enter your responses in a separate QuestionMark online answer sheet. Please be sure that you 
open the .pdf with the questions first before opening the QuestionMark online answer sheet. You will have one attempt to complete the assessment. Please 
allow yourself sufficient time (approximately 30 minutes) to complete the assessment. 



(U/ /FOUO) Please click the Assessment Questions Document link to open the .pdf question file and keep the window open. Then go to the VUport 
SumTotal Content Player page, click on the Assessment link on the left, and follow the instructions to complete the required exam. 
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